![](/assets/img/cve_300x82_sin_bg.png)
CVE-2005-1993
https://notcve.org/view.php?id=CVE-2005-1993
20 Jun 2005 — Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack. • http://docs.info.apple.com/article.html?artnum=302847 •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2002-0184 – Sudo 1.6.x - Password Prompt Heap Overflow
https://notcve.org/view.php?id=CVE-2002-0184
16 May 2002 — Sudo before 1.6.6 contains an off-by-one error that can result in a heap-based buffer overflow that may allow local users to gain root privileges via special characters in the -p (prompt) argument, which are not properly expanded. Desbordamiento del montón (heap) en sudo anteriores a 1.6.6 puede permitir a usuarios locales ganar privilegios de root mediante caractéres especiales en el argumento -p (prompt), que no son expandidos adecuadamente. • https://www.exploit-db.com/exploits/21420 • CWE-131: Incorrect Calculation of Buffer Size •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-1999-0958
https://notcve.org/view.php?id=CVE-1999-0958
12 Jan 1998 — sudo 1.5.x allows local users to execute arbitrary commands via a .. (dot dot) attack. • http://marc.info/?l=bugtraq&m=88465708614896&w=2 •